VYPR
Unrated severityNVD Advisory· Published Oct 8, 2021· Updated Aug 3, 2024

Denial-of-Service (DoS) Vulnerability

CVE-2021-33603

Description

A Denial-of-Service (DoS) vulnerability was discovered in F-Secure Atlant whereby the AVPACK module component used in certain F-Secure products can crash while scanning a fuzzed files. The exploit can be triggered remotely by an attacker. A successful attack will result in Denial-of-Service (DoS) of the Anti-Virus engine.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A Denial-of-Service vulnerability in F-Secure Atlant's AVPACK module allows remote attackers to crash the anti-virus engine by sending a fuzzed file.

Vulnerability

A Denial-of-Service (DoS) vulnerability exists in the AVPACK module component of F-Secure Atlant, used in certain F-Secure products. The module crashes while scanning a specially crafted fuzzed file. The affected versions are detailed in the advisory [1].

Exploitation

An attacker can remotely trigger the vulnerability by sending a fuzzed file to a system running an affected F-Secure product. When the anti-virus engine scans the file, the AVPACK module crashes, causing a denial of service. No authentication is required for the attack.

Impact

Successful exploitation results in a Denial-of-Service of the Anti-Virus engine, rendering it unable to scan files and potentially leaving the system unprotected.

Mitigation

F-Secure has released security updates to address this vulnerability. Users should refer to the advisory [1] for the list of affected products and apply the latest updates as soon as possible.

AI Insight generated on May 27, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2
  • F-Secure/F-Secure endpoint protection products on Windows and Mac. F-Secure Linux Security (32-bit) F-Secure Linux Security 64 F-Secure Atlant F-Secure Cloud Protection for Salesforce and Cloud Protection for Microsoft Office 365v5
    Range: All Version

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.